CyberRota
← Ana sayfaya dön

CVE-2025-10656

CRITICAL · CVSS 9.8

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-29T10:16:31.407 · Çekilme zamanı: 2026-07-29T12:07:39.409278+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2025-10656
Severity
CRITICAL
CVSS
9.8
EPSS
Yok
WordPress

Orijinal NVD Açıklaması

The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.4.37 vi the user_filter function. This makes it possible for unauthenticated attackers to create admin accounts.